Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 387293 - Kernel: net_namespace.c DoS facilitation (CVE-2011-2189)
Summary: Kernel: net_namespace.c DoS facilitation (CVE-2011-2189)
Status: RESOLVED FIXED
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Kernel (show other bugs)
Hardware: All Linux
: Normal normal (vote)
Assignee: Gentoo Kernel Security
URL:
Whiteboard: [linux < 2.6.35]
Keywords:
Depends on:
Blocks:
 
Reported: 2011-10-16 13:54 UTC by GLSAMaker/CVETool Bot
Modified: 2018-04-04 17:41 UTC (History)
0 users

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description GLSAMaker/CVETool Bot gentoo-dev 2011-10-16 13:54:35 UTC
CVE-2011-2189 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2011-2189):
  net/core/net_namespace.c in the Linux kernel 2.6.32 and earlier does not
  properly handle a high rate of creation and cleanup of network namespaces,
  which makes it easier for remote attackers to cause a denial of service
  (memory consumption) via requests to a daemon that requires a separate
  namespace per connection, as demonstrated by vsftpd.
Comment 1 Aaron Bauman (RETIRED) gentoo-dev 2018-04-04 17:41:50 UTC
There are no longer any 2.x kernels available in the repository with the exception of sys-kernel/xbox-sources which is unsupported by security.